| MD5 | a3b572ae78b48a932374f1d6a1228736 |
| SHA1 | 67dd4f74ca3b76b369943342fab06bf42b4c5345 |
| Filename | a3b572ae78b48a932374f1d6a1228736.kaf.exe |
| IPs | [134.170.188.221] |
| IPs | [54.235.96.196] |
| IPs | [108.61.73.244] |
| IPs | [74.207.242.71] |
| IPs | [91.213.8.35] |
| Domains | [microsoft.com] [jodatuksec.com] [kfozlxtqnmibm.com] [sfcrzfepspsrzfs.com] [mvbymuymfwxgwqg.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [qcmbartuop.bit] |
| IP Addresses | [134.170.188.221] [54.235.96.196] [108.61.73.244] [74.207.242.71] [91.213.8.35] |
| Antivirus | [Downloader.Generic14.JIX] |
| [HEUR/QVM20.1.Malware.Gen] | |
| [HW32.Packed.9393] | |
| [Mal/Generic-S] | |
| [PE:Malware.XPACK-HIE/Heur!1.9C48] | |
| [RDN/Downloader.a!uo] | |
| [Trj/Chgt.O] | |
| [Trojan-Downloader.Win32.Necurs] | |
| [Trojan-Dropper.Win32.Necurs.xer] |